Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
774 results
cve-2022-33891 preview

cve-2022-33891

GitHubhuskyhacks/cve-2022-33891

Apache Spark Shell Command Injection Vulnerability

command-and-controlexploitationpayload-generation+3
87
3 years ago
XSSYA preview

XSSYA

GitHubyehia-mamdouh/xssya

XSSYA (Cross Site Scripting Scanner & Vulnerability Confirmation)

payload-generationpenetration-testingvulnerability-analysis+3
973 years ago
android_autorooter preview

android_autorooter

GitHubscs-labrat/android_autorooter

Exfiltrate sensitive user data from apps on Android 12 and 13 using CVE-2024-0044 vulnerability remotely

android-securitydata-exfiltrationexploitation+5
772 years ago
CVE-2023-0669 preview

CVE-2023-0669

GitHub0xf4n9x/cve-2023-0669

CVE-2023-0669 GoAnywhere MFT suffers from a pre-authentication command injection vulnerability in the License Response Servlet due to deserializing…

command-and-controlexploitationpayload-generation+3
1022 years ago
CVE-2023-21716 preview

CVE-2023-21716

GitHubgyaansastra/cve-2023-21716

A vulnerability within Microsoft Office's wwlib allows attackers to achieve remote code execution with the privileges of the victim that opens a…

binary-exploitationeducationexploitation+3
5910 months ago
CVE-2025-8088-Winrar-Tool preview

CVE-2025-8088-Winrar-Tool

GitHubhexsecteam/cve-2025-8088-winrar-tool

A sophisticated GUI tool for creating malicious RAR archives that exploit the WinRAR path traversal vulnerability (CVE-2025-8088) using ADS and RAR5…

educationexploitationlabs-practice+5
4811 months ago
Gideon preview

Gideon

GitHubcogensec/gideon

Autonomous security operations agent for threat intelligence, vulnerability research, IOC analysis, and red teaming. Supports dual-mode operations…

ai-securitycommand-and-controleducation+9
341 month ago
jwt-key-id-injector preview

jwt-key-id-injector

GitHubdariusztytko/jwt-key-id-injector

Simple python script to check against hypothetical JWT vulnerability.

payload-generationpenetration-testingvulnerability-analysis+1
515 years ago
CVE-2024-36401 preview

CVE-2024-36401

GitHubmr-xn/cve-2024-36401

Remote Code Execution (RCE) Vulnerability In Evaluating Property Name Expressions with multies ways to exploit

command-and-controlexploitationpayload-generation+3
562 years ago
spring4shell-exploit-poc preview

spring4shell-exploit-poc

GitHubfourcorelabs/spring4shell-exploit-poc

Exploit a vulnerable Spring application with the Spring4Shell (CVE-2022-22965) Vulnerability.

educationexploitationpayload-generation+3
444 years ago
CVE-2023-37582_EXPLOIT preview

CVE-2023-37582_EXPLOIT

GitHubmalayke/cve-2023-37582_exploit

Apache RocketMQ Arbitrary File Write Vulnerability Exploit

educationexploitationpayload-generation+3
463 years ago
CVE-2023-30547 preview

CVE-2023-30547

GitHubrvzsec/cve-2023-30547

PoC Exploit for VM2 Sandbox Escape Vulnerability

binary-exploitationcode-analysisexploitation+3
442 years ago
Follina_Exploiter_CLI preview

Follina_Exploiter_CLI

GitHubhrishikesh7665/follina_exploiter_cli

Exploit Microsoft Zero-Day Vulnerability Follina (CVE-2022-30190)

command-and-controlexploitationpayload-generation+4
344 years ago
CVE-2026-1731 preview

CVE-2026-1731

GitHubwin3zz/cve-2026-1731

CVE-2026-1731 - Critical command injection vulnerability in BeyondTrust Remote Support and Privileged Remote Access due to unsafe Bash arithmetic…

exploitationpayload-generationpenetration-testing+3
356 months ago
CVE-2025-26686-The-TCP-IP-Flaw-That-Opens-the-Gates preview

CVE-2025-26686-The-TCP-IP-Flaw-That-Opens-the-Gates

GitHubmrk336/cve-2025-26686-the-tcp-ip-flaw-that-opens-the-gates

A critical RCE vulnerability in Windows TCP/IP stack (CVE-2025-26686) leaves sensitive memory unlocked, allowing remote attackers to hijack systems.…

binary-exploitationeducationexploitation+4
3211 months ago
CVE-2024-21413 preview

CVE-2024-21413

GitHubthemehackers/cve-2024-21413

CVE-2024-21413 | Microsoft Outlook Remote Code Execution Vulnerability PoC

email-securityexploitationpayload-generation+3
251 year ago
scaredycat preview

scaredycat

GitHubeudemonics/scaredycat

Python script to generate a malicious MP4 file and start a CherryPy web server hosting a simple HTML page with the embedded file. Exploits another…

android-securityexploitationmobile-security+4
1710 years ago
CVE-2025-6218-POC preview

CVE-2025-6218-POC

GitHubskimask1690/cve-2025-6218-poc

Proof of Concept for CVE-2025-6218, demonstrating the exploitation of a vulnerability in WinRAR versions 7.11 and under, involving improper handling…

educationexploitationpayload-generation+2
291 year ago
Previous1…456…43Next